Digital Forensics Lead
Listed on 2026-07-25
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Requisition #: 1436
Digital Forensics Lead
Location:
Reston, VA
Clearance Level: TS (SCI Eligible)
SUMMARYAgile Defense is seeking highly qualified Digital Forensics Lead to support USG enterprise cybersecurity program delivering 24/7/365 Cybersecurity Operations Center (SOC) services. These positions provide strategic leadership, operational oversight, and deep technical expertise across key mission areas, including cyber defense, incident response, threat hunting, insider threat, threat intelligence, engineering, and modernization initiatives.
JOB DUTIES AND RESPONSIBILITIESLeads digital forensics and insider-threat investigations, ensuring proper evidence handling, strict chain-of-custody, and high-confidence analysis to enable rapid incident containment and remediation. Ability to perform endpoint and network-based forensic analysis, malware triage, and insider-threat investigations. Utilize customer SIEM Design and maintain dashboards, reports, and workflow documentation for forensics and incident response processes; provide mentorship to junior analysts.
QUALIFICATIONSEducation, Background, and Years of Experience
Bachelor's degree in computer science, Engineering, STEM, Information Technology, or Cybersecurity
ADDITIONAL SKILLS & QUALIFICATIONSRequired Skills
Candidates will have a minimum of seven (7) years of professional experience with a solid understanding of incident response, insider threat investigations, digital forensics, and cyber threats. A minimum of five (5) years of hands‑on experience with experience in the last two (2) years that includes bare metal, cloud or virtual system-based and network-based security monitoring, identifying and analyzing anomalous activities with familiarity in insider threat monitoring software, endpoint forensic tools, intrusion detection systems, intrusion analysis functions, security information event management (SIEM) platforms, endpoint detection and response tools, security operations ticket management.
The ability to create insider threat focused dashboards, reports and workflow diagrams. Experience collecting data, chain of custody and reporting results; handling and escalating security issues or emergency situations appropriately; providing incident response capabilities to isolate and mitigate threats to maintain confidentiality, integrity, and availability for protected data. Applicant will have excellent written and oral communication skills, be able to work independently and as part of a team.
Willingness and experience with mentoring junior members in an open collaborative environment.
Preferred Skills
GCFA, GREM, GFCE, GNFA, GIME, GASF, GX-FA, Encase, Cellebrite or equivalent preferred.
WORKING CONDITIONSHybrid role in Reston, VA
Physical Requirements
$160,000 - $175,000 a year
Equal Opportunity Employer/Protected Veterans/Individuals with DisabilitiesWe may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).